MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 53b0ebc0c6e923555363ccbb00995d632624e5174405f54b9abf4949254e53a2. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



GuLoader


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: 53b0ebc0c6e923555363ccbb00995d632624e5174405f54b9abf4949254e53a2
SHA3-384 hash: f024d96906516a522cd2ae9e3c4c7f7935330d1882d92ac5e85ad00e62e1bd62316b9daa1f1ddc81312dfffd7a93954e
SHA1 hash: d9ad9c29e7a07fef3ac44b4107f05d4b4563e657
MD5 hash: d3a6d7b8be58cbc21e732bd117fd3d05
humanhash: monkey-timing-avocado-salami
File name:New Order sheet.lha
Download: download sample
Signature GuLoader
File size:27'185 bytes
First seen:2020-05-25 05:24:12 UTC
Last seen:Never
File type: rar
MIME type:application/x-rar
ssdeep 768:AwL6LasaZVZ17KyC0ZW9tJSGLUimic02uwdGN:XLhz7rCvPwiJc02jcN
TLSH E9C2F19ECDD00F5135F82300D76ABBCA9C2D04797F80A97A6652CCBF185182129E57F3
Reporter cocaman
Tags:lha

Intelligence


File Origin
# of uploads :
1
# of downloads :
66
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Injector
Status:
Malicious
First seen:
2020-05-25 05:35:58 UTC
File Type:
Binary (Archive)
Extracted files:
7
AV detection:
17 of 48 (35.42%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

GuLoader

rar 53b0ebc0c6e923555363ccbb00995d632624e5174405f54b9abf4949254e53a2

(this sample)

  
Delivery method
Distributed via e-mail link

Comments